[Webkit-unassigned] [Bug 16824] Script authorization should follow lexical (not dynamic) scope
bugzilla-daemon at webkit.org
bugzilla-daemon at webkit.org
Thu Jan 10 15:11:32 PST 2008
http://bugs.webkit.org/show_bug.cgi?id=16824
------- Comment #4 from webkit at collinjackson.com 2008-01-10 15:11 PDT -------
> This is hard for web attackers to exploit because Safari prevents web sites
> from directing the browsers from file:// URLs.
Oops. Typo. Safari prevents web sites from directing the browser *to* file://
URLs.
--
Configure bugmail: http://bugs.webkit.org/userprefs.cgi?tab=email
------- You are receiving this mail because: -------
You are the assignee for the bug, or are watching the assignee.
More information about the webkit-unassigned
mailing list